Vulnerabilities > Trellix > Application AND Change Control > High

DATE CVE VULNERABILITY TITLE RISK
2023-11-27 CVE-2023-5607 Path Traversal vulnerability in Trellix Application and Change Control
An improper limitation of a path name to a restricted directory (path traversal) vulnerability in the TACC ePO extension, for on-premises ePO servers, prior to version 8.4.0 could lead to an authorised administrator attacker executing arbitrary code through uploading a specially crafted GTI reputation file.
network
low complexity
trellix CWE-22
7.2